From fe3908e77451c419c9e4b8351cb72cde9c875312 Mon Sep 17 00:00:00 2001 From: Gaurav Sinha Date: Mon, 6 Feb 2012 17:19:00 -0800 Subject: adding an initial version of conntrack-timeouts script (cherry picked from commit 8235f2a9a3b3e1a5a289c4365d809bb09f941ee4) --- templates-cfg/system/conntrack/timeout/custom/node.def | 12 ++++++++++++ templates-cfg/system/conntrack/timeout/custom/rule/node.def | 2 +- 2 files changed, 13 insertions(+), 1 deletion(-) (limited to 'templates-cfg') diff --git a/templates-cfg/system/conntrack/timeout/custom/node.def b/templates-cfg/system/conntrack/timeout/custom/node.def index c8e5841..7967ead 100644 --- a/templates-cfg/system/conntrack/timeout/custom/node.def +++ b/templates-cfg/system/conntrack/timeout/custom/node.def @@ -1 +1,13 @@ help: Define custom timeouts per flow +end: if sudo /opt/vyatta/bin/sudo-users/vyatta-conntrack-timeouts.pl --update 'true'; + then + if [ ${COMMIT_ACTION} = 'DELETE' ] ; + then + sudo /opt/vyatta/bin/sudo-users/vyatta-conntrack-timeouts.pl --delete 'true'; + fi + else + exit 1; + fi + +create: sudo /opt/vyatta/bin/sudo-users/vyatta-conntrack-timeouts.pl --create 'true' + diff --git a/templates-cfg/system/conntrack/timeout/custom/rule/node.def b/templates-cfg/system/conntrack/timeout/custom/rule/node.def index c31dfbd..077603e 100644 --- a/templates-cfg/system/conntrack/timeout/custom/rule/node.def +++ b/templates-cfg/system/conntrack/timeout/custom/rule/node.def @@ -4,6 +4,6 @@ type: u32 help: Rule number (1-9999) -syntax:expression: $VAR(@) > 0 && $VAR(@) <= 9999; "firewall rule number must be between 1 and 9999" +syntax:expression: $VAR(@) > 0 && $VAR(@) <= 9999; "Custom timeout rule number must be between 1 and 9999" val_help: u32:1-9999; Rule number -- cgit v1.2.3